Vulnerabilities > Scponly > Scponly > 3.5
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2005-12-28 | CVE-2005-4533 | Local vulnerability in SCPOnly Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local users to execute arbitrary applications via "getopt" style argument specifications, which are not filtered. | 7.5 |
2005-01-10 | CVE-2004-1162 | Remote Arbitrary Command Execution vulnerability in SCPOnly The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via the (1) -rshcmd or (2) -sshcmd flags. | 7.5 |